GitHub Advisory Database
Security vulnerability database inclusive of CVEs and GitHub originated security advisories from the world of open source software.
GitHub reviewed advisories
Unreviewed advisories
Filter advisories
Filter advisories
GitHub reviewed advisories
All reviewed
5,000+
Composer
5,000+
Erlang
39
GitHub Actions
38
Go
2,717
Maven
5,000+
npm
4,328
NuGet
761
pip
4,105
Pub
12
RubyGems
958
Rust
1,065
Swift
45
Unreviewed advisories
All unreviewed
5,000+
Unreviewed advisories have not been assessed by GitHub for quality and do not connect to the Dependabot service.
4,020 advisories
Filter by severity
code-projects Online Medicine Guide 1.0 is vulnerable to SQL Injection in /login.php via the...
Critical
Unreviewed
CVE-2025-60736
was published
Dec 2, 2025
Edoc-doctor-appointment-system v1.0.1 was discovered to contain SQl injection vulnerability via...
Critical
Unreviewed
CVE-2025-65358
was published
Dec 2, 2025
A blind SQL Injection (SQLi) vulnerability in mJobtime v15.7.2 allows unauthenticated attackers...
Critical
Unreviewed
CVE-2025-51683
was published
Dec 1, 2025
A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the cancel...
Critical
Unreviewed
CVE-2025-63532
was published
Dec 1, 2025
A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the abs.php...
Critical
Unreviewed
CVE-2025-63535
was published
Dec 1, 2025
A SQL injection vulnerability exists in the Blood Bank Management System 1.0 within the...
Critical
Unreviewed
CVE-2025-63531
was published
Dec 1, 2025
OpenCode Systems USSD Gateway OC Release: 5 Version 6.13.11 was discovered to contain a SQL...
Critical
Unreviewed
CVE-2025-65235
was published
Nov 26, 2025
OpenCode Systems USSD Gateway OC Release: 5 was discovered to contain a SQL injection...
Critical
Unreviewed
CVE-2025-65236
was published
Nov 26, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-10437
was published
Nov 19, 2025
DzzOffice v2.3.7 and before is vulnerable to SQL Injection in explorer/groupmanage.
Critical
Unreviewed
CVE-2025-63694
was published
Nov 18, 2025
PHPGurukul Online Shopping Portal 2.0 is vulnerable to SQL Injection via the email parameter in...
Critical
Unreviewed
CVE-2024-44659
was published
Nov 17, 2025
A SQL injection vulnerability exists in the login functionality of WellSky Harmony version 4.1.0...
Critical
Unreviewed
CVE-2025-56385
was published
Nov 12, 2025
A SQL Injection Vulnerability in CentralSquare Community Development 19.5.7 allows attackers to...
Critical
Unreviewed
CVE-2025-64280
was published
Nov 12, 2025
Zohocorp ManageEngine Analytics Plus versions 6170 and below are vulnerable to Unauthenticated...
Critical
Unreviewed
CVE-2025-8324
was published
Nov 11, 2025
Multiple SQL injection vulnerabilitites in ycf1998 money-pos system before commit...
Critical
Unreviewed
CVE-2025-63689
was published
Nov 7, 2025
An SQL injection vulnerability has been reported to affect QuMagie. A remote attacker can exploit...
Critical
Unreviewed
CVE-2025-52425
was published
Nov 7, 2025
SQL injection vulnerability in DIAL's CentrosNet v2.64. Allows an attacker to retrieve, create,...
Critical
Unreviewed
CVE-2025-10870
was published
Nov 7, 2025
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP...
Critical
Unreviewed
CVE-2022-50593
was published
Nov 6, 2025
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP...
Critical
Unreviewed
CVE-2022-50592
was published
Nov 6, 2025
Advantech iView versions prior to v5.7.04 build 6425 contain a vulnerability within the SNMP...
Critical
Unreviewed
CVE-2022-50595
was published
Nov 6, 2025
SuiteCRM versions prior to 7.12.6 contain a SQL injection vulnerability within the processing of...
Critical
Unreviewed
CVE-2022-50589
was published
Nov 6, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-52773
was published
Nov 6, 2025
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection')...
Critical
Unreviewed
CVE-2025-48089
was published
Nov 6, 2025
Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/forgot-pass.php.
Critical
Unreviewed
CVE-2025-63452
was published
Nov 3, 2025
Car-Booking-System-PHP v.1.0 is vulnerable to SQL Injection in /carlux/contact.php.
Critical
Unreviewed
CVE-2025-63453
was published
Nov 3, 2025
ProTip!
Advisories are also available from the
GraphQL API